RFC: Remove write permissions from executables

Steve Grubb sgrubb at redhat.com
Fri Jan 22 18:15:02 UTC 2010


On Friday 22 January 2010 10:25:47 am David Malcolm wrote:
> i.e. it seems to me like it's worth going through the Feature process
> (either as a Feature or an Enhancement), if only to capture the standard
> concerns there and create a URL describing the change; see:
> https://fedoraproject.org/wiki/Features
> 
> Bear in mind that the deadline for requesting F13 features is in 4 days
> time (if memory serves)
> 
> How many files would be affected by the change?

We would want to change the owner write permission bit for all executables. In 
F-12 we took care of the major directories, this is phase 2 of the same 
project where we take a bigger step. Phase 1 was proving that the missing 
write permission on directories won't mess up system updates. Phase 2 would do 
the same to files.

> All executables on the system? 

Yep.

> Would any of the language runtimes be broken by this change
> (e.g. for shebang scripts?)

Nope. You can change them all on your system right now if you want.

-Steve


More information about the devel mailing list